Stand out for this role — generate a tailored resume and cover letter in about a minute.
John Clements Consultants, Inc. is seeking an experienced IT Security professional to lead third-party risk management initiatives and support vendor risk assessments across global partners.
The role focuses on assessing, monitoring, and mitigating cybersecurity risks while ensuring policy compliance and industry standards. You will collaborate with internal stakeholders, produce risk reports, and contribute to the continuous improvement of risk management frameworks in a multinational
About the role
We are seeking an experienced IT Security professional to lead and support third-party risk management initiatives. The role focuses on assessing, monitoring, and mitigating cybersecurity risks associated with vendors, suppliers, and other external partners while ensuring compliance with security policies and industry standards.
Key responsibilities
Conduct third-party security risk assessments and due diligence reviews.
Evaluate vendor security controls and identify potential risks.
Collaborate with internal stakeholders to address risk findings and remediation plans.
Monitor ongoing vendor compliance and risk exposure.
Support the development and enhancement of third-party risk management frameworks and processes.
Prepare risk reports and recommendations for management.
Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
Minimum of 5 years of Third-Party Risk Management experience, preferably within a multinational or international environment.
Strong understanding of:
Information security threats and risk management
Networking and TCP/IP
Incident response and security operations
Access control, encryption, and multi-factor authentication
Microsoft 365 Security Suite
Privileged Access Management (PAM)
Vulnerability Management
Security monitoring and network monitoring tools
Security and privacy frameworks such as NIST, MITRE ATT&CK, and GDPR
Experience with firewall and router administration is an advantage
Strong analytical and problem-solving abilities
Excellent communication and stakeholder management skills
Ability to work independently and collaboratively within global teams
Strong critical thinking and decision-making capabilities
Global exposure with interaction across multiple regions and external security partners.
Focus on cybersecurity operations, third-party risk management, incident response, and continuous security improvement.